Security Operation Centers (SOC) s are continuously monitoring an ever-increasing scope of assets, both those incorporated by a company and independent devices, stemming from the ever-amorphous “Internet of Things” that are brought into a workplace environment. This creates a massive amount of alerts or “noise”, most of which are benign, but still requires a security analyst to review and confirm its banality, drawing a security analyst’s time, and attention away from potentially real threats or attacks. Cutting down the “noise” amount of false positives, or nonthreatening alerts is a primary concern for security analysts, chief information security officers, and chief executive officers alike. Machine learning, while not a silver bullet, can become a powerful tool if utilized appropriately to reduce the noise.